CVE-2023-43892: OS Command Injection
Netis N3Mv2-V1.0.1.865 was discovered to contain a command injection vulnerability via the Hostname parameter within the WAN settings. This vulnerability is exploited via a crafted payload.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-43892?
CVE-2023-43892 is a command injection vulnerability in Netis N3Mv2-V1.0.1.865 through the Hostname parameter within the WAN settings.
How severe is CVE-2023-43892?
CVE-2023-43892 has a severity rating of critical, with a severity value of 9.8.
How can CVE-2023-43892 be exploited?
CVE-2023-43892 can be exploited by sending a crafted payload through the Hostname parameter in the WAN settings.
Is Netis N3Mv2-V1.0.1.865 affected by CVE-2023-43892?
Yes, Netis N3Mv2-V1.0.1.865 is affected by CVE-2023-43892.
How can I fix CVE-2023-43892?
To fix CVE-2023-43892, it is recommended to apply the latest firmware update provided by Netis Systems and ensure that the Hostname parameter in the WAN settings is properly validated.